newbee-mall
cpe:2.3:a:newbee-mall_project:newbee-mall:*:*:*:*:*:*:*
A critical vulnerability allowing unrestricted file uploads has been identified in Newbee Mall version 1.0. The issue arises in the Upload function of the UploadController.java file, where manipulation of the File argument enables remote exploitation.
Exploitation of this vulnerability allows for arbitrary file uploads, which could lead to further attacks such as remote code execution, depending on the uploaded file type and the application's file handling procedures.
Our algorithm analyzes dozens of metrics to generate these 8 key vulnerability categories, which are then combined to calculate the overall risk score.